-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 3.0 (quilt) Source: tcpdump Binary: tcpdump Architecture: any Version: 4.3.0-1+deb7u1 Maintainer: Romain Francoise <[email protected]> Homepage: http://www.tcpdump.org/ Standards-Version: 3.9.3 Vcs-Browser: http://git.debian.org/?p=users/rfrancoise/tcpdump.git Vcs-Git: git://git.debian.org/git/users/rfrancoise/tcpdump.git Build-Depends: dpkg-dev (>= 1.16.1~), debhelper (>= 8.9.4~), libpcap0.8-dev (>= 0.9.3), libssl-dev, autotools-dev, autoconf Package-List: tcpdump deb net optional arch=any Checksums-Sha1: 5d0432e4831ca81633a6c9da732caad77d64a9ac 887619 tcpdump_4.3.0.orig.tar.gz 44b3da0e4f51dc5e5f37310cc8244e32a86194d5 14972 tcpdump_4.3.0-1+deb7u1.debian.tar.xz Checksums-Sha256: efd08b610210d39977ec3175fa82dad9fbd33587930081be2a905a712dba4286 887619 tcpdump_4.3.0.orig.tar.gz 4d36e1a9140d3268a0bc1e71d89ee4649c9c1a17002b20078a85720b5673fe23 14972 tcpdump_4.3.0-1+deb7u1.debian.tar.xz Files: a3fe4d30ac85ff5467c889ff46b7e1e8 887619 tcpdump_4.3.0.orig.tar.gz af8927109c537f1650af40c92738d107 14972 tcpdump_4.3.0-1+deb7u1.debian.tar.xz -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIbBAEBCAAGBQJUfZt1AAoJEK0V9DXwX5YtAOAP93YRBriy9svXv48o3QIkH+z9 2ERopCcLivbAa/wnnM+La48VRkdwLsdBVsGZvawigHOqVC6n0IHr5+SIjNk/MAXv MPSh79cRbaf9L9lLcQNqg5YYM8x0zpU9sK1GKrvI0ZBQBzea84XaBidQy/MXhGUh Rk5T5vqdakFbmReBGX8TMq45UuRTYOphfEI51g5PzGoLy4iwenJfPBJioD7VW8Ff racEz8P2rup/6oVNL5JHk8DSJPE/0irgFcfwx4R4W2ZvfdSQjK/iT38Mj9Xv2Ifr /75NWM/FLVBwbtUMPHeuCOspf9ayYWxS5yxQ8ERplbs7DeoLJWUDOKw1xvXpYQQt mP5ZuBKZSuP4IhzrW+BUZaCWS4BK8RyRkGLhE0Lmvn05uyuIy/eOlj6CW+bFbThK nziZSiSsQpAQOSemVH+LOrBu8bqPNqUe8EOzwWU1dQFBuhPpMPs5ZIJwo05OFWma 04Pq2VskovUpxbKg4OjYVg33SJ6CWIGpcvbPpYFsWGDFHR2I7y7Ubrm3fedBB2dS dwVq8flG3hTYlkpTL7IzN3cFGrzYDPbEAOXgII2ZgOuH7tM9Vcf9CIq0jxyADtld TQTSx8OjAd2u4OAcIH72qJRRiXlmAJDDda/LjINA2KNnyAidJRQ8rDIw99Wi+gqI zzBJqxdD03LBHioio/c= =7vmW -----END PGP SIGNATURE----- Changes: tcpdump (4.3.0-1+deb7u1) wheezy-security; urgency=high * Add patches extracted from the upstream tcpdump_4.3 branch fixing three security issues: + CVE-2014-8767: missing bounds checks in the OLSR dissector (closes: #770434). + CVE-2014-8769: missing bounds checks in the AODV dissector (closes: #770424). + CVE-2014-9140: missing bounds checks in the PPP dissector -- Romain Francoise <[email protected]> Sat, 29 Nov 2014 18:09:49 +0100